Patentable/Patents/US-10798064
US-10798064

Proxy computer system to provide encryption as a service

PublishedOctober 6, 2020
Assigneenot available in USPTO data we have
Inventorsnot available in USPTO data we have
Technical Abstract

A server system implements an encryption service, in connection with a proxy service that enables a client computer to utilize the third-party network service.

Patent Claims
18 claims

Legal claims defining the scope of protection, as filed with the USPTO.

1

1. A server system comprising: a memory resource to store: a set of instructions; one or more processors to access the set of instructions from the memory resource to: provide a proxy service for a client computer to utilize when accessing a third-party network service; wherein in providing the proxy service, the one or more processors: receive a content submission from the client computer intended for the third-party network service; analyze the content submission to identify one or more sensitive data elements within the content submission, wherein a remainder of the content submission is not recognized as being sensitive; perform an encryption operation on the sensitive data elements; store a decryption key associated with the sensitive data elements with the server system; transmit the content submission to the third-party network service to store the content submission with the sensitive data elements in an encrypted form; receive a request, independent of the client computer, identifying the sensitive data elements in the encrypted form; and provide a response to the request using the decryption key, the response enabling the sensitive data elements to be used in a decrypted form.

2

2. The server system of claim 1 , wherein the one or more processors provide the response to the request by receiving the sensitive data elements in the encrypted form from a requester independent of the client computer, decrypting the sensitive data elements from the encrypted form into the decrypted form, and then sending the sensitive data elements in the decrypted form to the requester.

3

3. The server system of claim 2 , wherein the requester is a workflow, program, routine, or process implemented by the third-party network service.

4

4. The server system of claim 2 , wherein the requester is separate from the third-party network service, and the one or more processors provide the response to the request by (i) retrieving the sensitive data elements specified by the request from the third-party network service, the sensitive data elements being in the encrypted form, (ii) decrypting the sensitive data elements from the encrypted form into the decrypted form, and (iii) sending the sensitive data elements in the decrypted form to the requester.

5

5. The server system of claim 1 , wherein in providing the proxy service, the one or more processors analyze content communicated from the client computer to the third-party network service to determine one or more data elements to encrypt before the one or more data elements are stored in the encrypted form with the third-party network service.

6

6. The server system of claim 1 , wherein the decryption key is used for decrypting the sensitive data elements in the encrypted form.

7

7. The server system of claim 1 , wherein the one or more processors store a set of interoperability parameters associated with the sensitive data elements with the server system.

8

8. The server system of claim 7 , wherein the set of interoperability parameters specify configurations, settings, and/or workflows to enable the sensitive data elements to be used between distinct systems or services.

9

9. The server system of claim 7 , wherein the set of interoperability parameters specify a format, configuration, or setting for use of the sensitive data elements in the decrypted form.

10

10. The server system of claim 7 , wherein the set of interoperability parameters enable the sensitive data elements to be used in the decrypted form for a particular purpose.

11

11. A method for providing a proxy service between a client computer and a third-party network service, the method being implemented by one or more processors of a network computer system and comprising: receiving a content submission from the client computer intended for the third-party network service; analyzing the content submission to identify one or more sensitive data elements within the content submission, wherein a remainder of the content submission is not recognized as being sensitive; performing an encryption operation on the sensitive data elements; storing a decryption key associated with the sensitive data elements with the network computer system; transmitting the content submission to the third-party network service to store the content submission with the sensitive data elements in an encrypted form; receiving a request, independent of the client computer, identifying the sensitive data elements in the encrypted form; and providing a response to the request using the decryption, the response enabling the sensitive data elements to be used in a decrypted form.

12

12. The method of claim 11 , wherein providing the response to the request includes receiving the sensitive data elements in the encrypted form from a requester independent of the client computer, decrypting the sensitive data elements from the encrypted form into the decrypted form, and then sending the sensitive data elements in the decrypted form to the requester.

13

13. The method of claim 12 , wherein the requester is a workflow, program, routine, or process implemented by the third-party network service.

14

14. The method of claim 12 , wherein the requester is separate from the third-party network service, and the one or more processors provide the response to the request by (i) retrieving sensitive data elements specified by the request from the third-party network service, the sensitive data elements being in the encrypted form, (ii) decrypting the sensitive data elements from the encrypted form into the decrypted form, and (iii) sending the sensitive data elements in the decrypted form to the requester.

15

15. A non-transitory computer-readable medium that stores instructions, which when executed by one or more processors of a computer system, cause the computer system to perform operations that include: receiving a content submission from a client computer intended for a third-party network service; analyzing the content submission to identify one or more sensitive data elements within the content submission, wherein a remainder of the content submission is not recognized as being sensitive; performing an encryption operation on the sensitive data elements; storing a decryption key associated with the sensitive data elements with the computer system; transmitting the content submission to the third-party network service to store the content submission with the sensitive data elements in an encrypted form; receiving a request, independent of the client computer, identifying the sensitive data elements in the encrypted form; and providing a response to the request using the decryption, the response enabling the sensitive data elements to be used in a decrypted form.

16

16. The non-transitory computer-readable medium of claim 15 , wherein the one or more processors provide the response to the request by receiving the sensitive data elements in the encrypted form from a requester independent of the client computer, decrypting the sensitive data elements from the encrypted form into the decrypted form, and then sending the sensitive data elements in the decrypted form to the requester.

17

17. The non-transitory computer-readable medium of claim 16 , wherein the requester is a workflow, program, routine, or process implemented by the third-party network service.

18

18. The non-transitory computer-readable medium of claim 16 , wherein the requester is separate from the third-party network service, and the one or more processors provide the response to the request by (i) retrieving the sensitive data elements specified by the request from the third-party network service, the sensitive data elements being in the encrypted form, (ii) decrypting the sensitive data elements from the encrypted form into the decrypted form, and (iii) sending the sensitive data elements in the decrypted form to the requester.

Classification Codes (CPC)

Cooperative Patent Classification codes for this invention. Click any code to explore related patents in that topic.

Patent Metadata

Filing Date

December 22, 2017

Publication Date

October 6, 2020

Want to explore more patents?

Browse 5M+ US patents with plain-English claim translations and AI-generated analysis.

Citation & reuse

Analysis on this page is generated by Patentable — an AI-powered patent intelligence platform. AI-generated summaries, explanations, and analysis may be reused with attribution and a visible link back to the canonical URL below. Patent abstracts and claims are USPTO public domain.

Cite as: Patentable. “Proxy computer system to provide encryption as a service” (US-10798064). https://patentable.app/patents/US-10798064

© 2026 Patentable. All rights reserved.

Patentable is a research and drafting-assistant tool, not a law firm, and does not provide legal advice. Documents we generate are drafts for review by a licensed patent attorney.

Proxy computer system to provide encryption as a service — Anthony Scotney | Patentable